Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.3 CVE-2026-19366 A flaw has been found in NocteDefensor LudusMCP up to 1.0.24. Affected is an unknown function of the file src/tools/insertCredsRangeConfig.ts of the … No fix yet Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19365 A vulnerability was identified in Ichigo3766 image-gen-mcp 0.1.0. The impacted element is an unknown function of the file src/index.ts of the compone… No fix yet Fix from $1,6002026-08-09 MEDIUM 6.3 CVE-2026-19364 A vulnerability was determined in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /viewdoctorcon… No fix yet Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19363 A vulnerability was found in lmammino oidc-authorizer up to 0.4.0. Impacted is an unknown function of the file src/handler.rs of the component Lambda… No fix yet Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19362 A vulnerability has been found in lmammino oidc-authorizer 0.4.0. This issue affects the function parse_token_from_header of the file src/parse_token… No fix yet Fix from $1,6002026-08-09 MEDIUM 6.3 CVE-2026-19358 A weakness has been identified in 3CORESec Trapdoor up to 1.2.2. Affected by this vulnerability is the function DefaultFunction. This manipulation ca… No fix yet Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19357 A security flaw has been discovered in MingSoft MCMS up to 3.0.6. Affected is an unknown function of the file /mdiy/form/get of the component ms-mdiy… No fix yet Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19356 A vulnerability was identified in MingSoft MCMS up to 3.0.6. This impacts an unknown function of the file /mdiy/form/data/list of the component ms-md… No fix yet Fix from $1,6002026-08-09 HIGH 7.3 CVE-2026-19355 A vulnerability was determined in MingSoft MCMS up to 3.0.6. This affects the function ModelDataImpl.queryDiyFormData of the file /mdiy/form/data/lis… No fix yet Fix from $1,9502026-08-09 MEDIUM 6.3 CVE-2026-19354 A vulnerability was found in lock-upme OPMS up to 831440f37a92c1568f2e071d5233bc873a9d8b09. The impacted element is an unknown function of the file c… No fix yet Fix from $1,6002026-08-09 MEDIUM 5.0 CVE-2026-19353 A vulnerability has been found in DedeCMS up to 5.7.118 UTF8SP2. The affected element is the function _4_Setup of the file install/index.php of the c… No fix yet Fix from $1,6002026-08-09 CRITICAL 9.8 CVE-2026-19348 A security flaw has been discovered in Shenzhen Aitemi M300 Wi-Fi Repeater r0-ea7890a. Impacted is the function sprintf of the file /protocol.csp?fna… No fix yet Fix from $2,3002026-08-09 MEDIUM 6.3 CVE-2026-19347 A vulnerability was identified in itsourcecode Hospital Management System 1.0. This issue affects some unknown processing of the file /viewdoctor.php… No fix yet Fix from $1,6002026-08-09 HIGH 8.8 CVE-2026-19346 A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formCertListInfo of the file /goform/CertListInfo. This… No fix yet Fix from $1,9502026-08-09 MEDIUM 6.5 CVE-2026-19345 A vulnerability was found in code-projects Task Management System 1.0. This affects an unknown part of the file /user/UpdateTaskStatus.php. The manip… No fix yet Fix from $1,6002026-08-09 HIGH 7.3 CVE-2026-19344 A vulnerability has been found in code-projects Task Management System 1.0. Affected by this issue is some unknown functionality of the file /user/co… No fix yet Fix from $1,9502026-08-09 HIGH 7.3 CVE-2026-19343 A flaw has been found in code-projects Task Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/Admi… No fix yet Fix from $1,9502026-08-09 HIGH 7.3 CVE-2026-19342 A vulnerability was detected in code-projects Task Management System 1.0. Affected is an unknown function of the file /index.php of the component Log… No fix yet Fix from $1,9502026-08-09 HIGH 8.8 CVE-2026-19341 A security vulnerability has been detected in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/pptpSrvGlobal… No fix yet Fix from $1,9502026-08-09 MEDIUM 6.3 CVE-2026-19340 A weakness has been identified in anubissbe ProjectHub-Mcp up to 5.0.0. This affects an unknown function of the file backend-fix/complete_backend.js … No fix yet Fix from $1,6002026-08-09 MEDIUM 6.3 CVE-2026-19339 A security flaw has been discovered in aliyun alibabacloud-dataworks-mcp-server up to 1.0.43. The impacted element is the function ReadResourceReques… No fix yet Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19338 A vulnerability was identified in automateyournetwork MCPyATS up to 0.1.4. The affected element is the function processGenerateRequest of the file mc… No fix yet Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19335 A vulnerability has been found in Jane-xiaoer skill-vision-control up to 1.3.0. This vulnerability affects the function getSkillVersionsDir of the fi… No fix yet Fix from $1,6002026-08-09 MEDIUM 6.5 CVE-2026-18603 The PiWeb Cancel order / Refund request for WooCommerce WordPress plugin before 1.3.4.34 does not have authorization or ownership checks when adding … No fix yet Fix from $1,6002026-08-09 CRITICAL 9.1 CVE-2026-18473 The WP Directory Kit WordPress plugin before 1.5.5 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a… No fix yet Fix from $2,3002026-08-09 MEDIUM 6.5 CVE-2026-18465 The WP MAPS PRO WordPress plugin before 6.1.3 does not perform a capability check in one of its AJAX actions, which is also available to unauthentica… No fix yet Fix from $1,6002026-08-09 HIGH 7.5 CVE-2026-18464 The WP MAPS PRO WordPress plugin before 6.1.3 does not perform a capability check in one of its AJAX actions, which is also available to unauthentica… No fix yet Fix from $1,9502026-08-09 HIGH 7.5 CVE-2026-18357 The WPC Order Tip for WooCommerce WordPress plugin before 3.3.1 does not perform authorisation or nonce checks in one of its reporting features, allo… No fix yet Fix from $1,9502026-08-09 MEDIUM 6.5 CVE-2026-18037 The Create WordPress plugin before 2.5.4 does not perform an authorization check before rendering content over one of its public REST API routes, and… No fix yet Fix from $1,6002026-08-09 HIGH 8.6 CVE-2026-17044 The Iptanus File Upload WordPress plugin before 5.1.8 does not properly sanitise and escape a parameter before using it in a SQL statement, leading t… No fix yet Fix from $1,9502026-08-09